Managed service providers (MSPs) have a tough job these days. As a result of the pandemic, workloads have increased with seemingly never-ending remote work requests, and cyber attacks are on the rise against both the MSP and their customers. Small and medium-sized enterprises are looking to MSPs to help them tackle these growing challenges, but are cautious to enlist their services given the potential exposure this opens them up to. They also face a myriad of regulatory and industry compliance requirements that dictate who can access what in their environment, and how.
探花大神鈥檚 directory platform already implements role-based access controls (RBAC), and with our latest release MSPs can now take advantage of the same granular access control from within the 探花大神 Multi-Tenant Portal (MTP), giving them an edge to maintain the safety, security, and compliance status of their customers without impacting operational efficiency.聽

Protecting Access
When MSPs manage multiple client accounts, security breaches can easily propagate across accounts if access is not properly managed. Last year, IT services giant Conduent experienced a major ransomware attack that put the majority of their clients at serious risk.
MSPs today have more stringent security requirements and increased compliance mandates, all of which make a busy MSP busier. They need the ability to manage granular access levels for both themselves and their customers and at the same time, scale and distribute their administrative tasks in their organization without sacrificing security.
Role-Based Access Controls for MTP
探花大神’s MTP fully manages clients鈥 identities and access controls across virtually all resources. That includes identity and access management (IAM) for Google Workspace, Microsoft 365, Azure, AWS, web applications, and more. MSPs can also use the 探花大神 MTP to enforce system security settings at scale, manage networks through RADIUS, and provide SSO to applications through SAML and cloud LDAP, all from a single pane of administrative glass across their entire customer base.
With this release, MSPs now have the ability to assign one of five roles that determine their access level to the MTP and managed organizations (an MSP鈥檚 customers). This capability will enhance the MSP鈥檚 security and compliance while improving the scalability of their administrative workloads.
Specifically, “Administrator with Billing,” “Administrator,” “Manager,” “Help Desk,” and “Read Only” roles provide a hierarchy of focused access levels 鈥 ensuring more admins and techs can manage different aspects of their customers鈥 探花大神 environment with the appropriate access. 鈥淎dministrator with Billing鈥 is the only role that can add or edit other admins, manage billing, or add/edit other organizations in the MTP.
Permission | Admin w/Billing | Admin | Manager | Help Desk | Read Only |
Add/delete admins | 鉁 | ||||
Manage billing in MTP | 鉁 | ||||
Add/edit orgs in MTP | 鉁 | ||||
Manage authentication, organization and user portal | 鉁 | 鉁 | |||
Manage application, directory and RADIUS configurations | 鉁 | 鉁 | |||
Manage devices, groups, users | 鉁 | 鉁 | 鉁 | ||
Pwd resets, account lockouts, MFA resets | 鉁 | 鉁 | 鉁 | 鉁 | |
View data and insights | 鉁 | 鉁 | 鉁 | 鉁 | 鉁 |
With the 鈥淎dministrator with Billing鈥欌 role effectively becoming a super admin, MSP leaders have peace of mind knowing that only the super admin has the ability to intentionally or unintentionally delete child organizations and/or their entire 探花大神 tenant. At the same time, 鈥淎dministrators鈥 have the ability to perform their normal tasks such as managing users, groups, and devices at child accounts.
To learn more about how you can leverage 探花大神 for managing your clients鈥 employee identities and resource access, check out the , read our access control case study, or schedule a demo.
If you haven鈥檛 done so yet, you can and test with 10 users and 10 devices. You鈥檒l also have access to free premium 24脳7 chat support for your first 10 days as a 探花大神 Admin, so you can maximize the beginning of your 探花大神 experience with support from platform experts.